Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CWE-416

MITRE ↗

Use After Free

834
CRITICAL
5,751
HIGH
1,124
MEDIUM
88
LOW
7,832 CVEs · Page 65/157
8.8
CVE-2024-47810

A use-after-free vulnerability exists in the way Foxit Reader 2024.3.0.26795 handles a 3D page object. A specially craft

8.8
CVE-2024-49576

A use-after-free vulnerability exists in the way Foxit Reader 2024.3.0.26795 handles a checkbox CBF_Widget object. A spe

8.8
CVE-2024-12694

Use after free in Compositing in Google Chrome prior to 131.0.6778.204 allowed a remote attacker to potentially exploit

8.8
CVE-2024-53237

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: fix use-after-free in device_for_each_ch

8.8
CVE-2024-56651

In the Linux kernel, the following vulnerability has been resolved: can: hi311x: hi3110_can_ist(): fix potential use-af

8.8
CVE-2024-56653

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btmtk: avoid UAF in btmtk_process_coredu

8.8
CVE-2024-56669

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Remove cache tags before disabling ATS

8.6
CVE-2024-4771

A memory allocation check was missing which would lead to a use-after-free if the allocation failed. This could have tri

8.4
CVE-2023-33094

Memory corruption while running VK synchronization with KASAN enabled.

8.4
CVE-2023-33108

Memory corruption in Graphics Driver when destroying a context with KGSL_GPU_AUX_COMMAND_TIMELINE objects queued.

8.4
CVE-2023-33114

Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitt

8.4
CVE-2023-43514

Memory corruption while invoking IOCTLs calls from user space for internal mem MAP and internal mem UNMAP.

8.4
CVE-2021-47049

In the Linux kernel, the following vulnerability has been resolved: Drivers: hv: vmbus: Use after free in __vmbus_open(

8.4
CVE-2023-6143

Use After Free vulnerability in Arm Ltd Midgard GPU Kernel Driver, Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GP

8.4
CVE-2023-43546

Memory corruption while invoking HGSL IOCTL context create.

8.4
CVE-2023-43547

Memory corruption while invoking IOCTLs calls in Automotive Multimedia.

8.4
CVE-2024-25985

In bigo_unlocked_ioctl of bigo.c, there is a possible UAF due to a missing bounds check. This could lead to local escala

8.4
CVE-2024-27205

there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no

8.4
CVE-2024-27213

In BroadcastSystemMessage of servicemgr.cpp, there is a possible Remote Code Execution due to a use after free. This cou

8.4
CVE-2024-27934

Deno is a JavaScript, TypeScript, and WebAssembly runtime. Starting in version 1.36.2 and prior to version 1.40.3, use o

8.4
CVE-2023-52629

In the Linux kernel, the following vulnerability has been resolved: sh: push-switch: Reorder cleanup operations to avoi

8.4
CVE-2024-21468

Memory corruption when there is failed unmap operation in GPU.

8.4
CVE-2024-21472

Memory corruption in Kernel while handling GPU operations.

8.4
CVE-2024-21471

Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.

8.4
CVE-2024-23354

Memory corruption when the IOCTL call is interrupted by a signal.

8.4
CVE-2021-47456

In the Linux kernel, the following vulnerability has been resolved: can: peak_pci: peak_pci_remove(): fix UAF When rem

8.4
CVE-2024-32503

An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 850, Exynos 1080, Exynos 2100, Exynos

8.4
CVE-2024-32502

An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 850, Exynos 1080, Exynos 2100, Exynos

8.4
CVE-2024-23373

Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.

8.4
CVE-2024-23380

Memory corruption while handling user packets during VBO bind operation.

8.4
CVE-2024-39672

Memory request logic vulnerability in the memory module. Impact: Successful exploitation of this vulnerability will affe

8.4
CVE-2024-23381

Memory corruption when memory mapped in a VBO is not unmapped by the GPU SMMU.

8.4
CVE-2024-23382

Memory corruption while processing graphics kernel driver request to create DMA fence.

8.4
CVE-2024-23383

Memory corruption when kernel driver attempts to trigger hardware fences.

8.4
CVE-2024-23384

Memory corruption when the mapped pages in VBO are still mapped after reclaiming by shrinker.

8.4
CVE-2024-33023

Memory corruption while creating a fence to wait on timeline events, and simultaneously signal timeline events.

8.4
CVE-2024-33028

Memory corruption as fence object may still be accessed in timeline destruct after isync fence is released.

8.4
CVE-2024-33034

Memory corruption can occur if VBOs hold outdated or invalid GPU SMMU mappings, especially when the binding and reclaimi

8.4
CVE-2024-23365

Memory corruption while releasing shared resources in MinkSocket listener thread.

8.4
CVE-2024-33060

Memory corruption when two threads try to map and unmap a single node simultaneously.

8.4
CVE-2024-46831

In the Linux kernel, the following vulnerability has been resolved: net: microchip: vcap: Fix use-after-free error in k

8.4
CVE-2024-38399

Memory corruption while processing user packets to generate page faults.

8.4
CVE-2024-27530

wasm3 139076a contains a Use-After-Free in ForEachModule.

8.4
CVE-2017-18153

A race condition exists in a driver potentially leading to a use-after-free condition.

8.3
CVE-2024-21385

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

8.3
CVE-2024-21399

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

8.3
CVE-2024-43574

Microsoft Speech Application Programming Interface (SAPI) Remote Code Execution Vulnerability

8.2
CVE-2024-21860

in OpenHarmony v4.0.0 and prior versions allow an adjacent attacker arbitrary code execution in any apps through use a

8.2
CVE-2024-37030

in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through

8.2
CVE-2024-6519

A use-after-free vulnerability was found in the QEMU LSI53C895A SCSI Host Bus Adapter emulation. This issue can lead to

Frequently Asked Questions

What is CWE-416?

CWE-416 (Use After Free) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.

How many CVEs are classified as CWE-416?

There are 9,940 CVE records associated with CWE-416 in our database. Of these, 834 are critical severity, 5751 are high severity, and 1124 are medium severity.

How can I protect against CWE-416 vulnerabilities?

Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-416 using AI-powered security agents.

Detect CWE-416 Vulnerabilities

CyberStrike's AI agents automatically detect use after free vulnerabilities across your infrastructure.

Get Started